Third-party online assets a growing security risk for retailers

83% of the top U.S. retailers have connections to a vulnerable third-party asset, and 43% have vulnerabilities that pose an immediate cybersecurity risk, Cyberpion reveals. In addition, the company found that 30% of these retailers have an asset that e… Continue reading Third-party online assets a growing security risk for retailers

How to reduce the risk of third-party SaaS apps

Third-party SaaS apps (and extensions) can significantly extend the functionality and capabilities of an organization’s public cloud environment, but they can also introduce security concerns. Many have permission to read, write, and delete sensi… Continue reading How to reduce the risk of third-party SaaS apps

The current state of third-party risk management

Third-party risk management (TPRM) professionals increasingly do not trust that security questionnaires provide sufficient information to properly understand and act on their third-party risk, according to RiskRecon and Cyentia Institute. As a result, … Continue reading The current state of third-party risk management

Challenges organizations face in combating third-party cyber risk

A CyberGRX report reveals trends and challenges organizations of all sizes face in combating third-party cyber risk today. Each insight was gleaned from proprietary assessment data gathered from a sample of 4,000 third parties. Twenty percent of an org… Continue reading Challenges organizations face in combating third-party cyber risk

Enterprise IT security teams continue to struggle

CyberEdge conducted a web-based survey of 600 enterprise IT security professionals from seven countries and 19 industries in August 2020 in an effort to understand how the pandemic has affected IT security budgets, personnel, cyber risks, and prioritie… Continue reading Enterprise IT security teams continue to struggle

Large vendor ecosystems and low visibility increase third-party cyber risk

80% of organizations experienced a cybersecurity breach that originated from vulnerabilities in their vendor ecosystem in the past 12 months, and the average organization had been breached in this way 2.7 times, according to a BlueVoyant survey. The re… Continue reading Large vendor ecosystems and low visibility increase third-party cyber risk

Organizations with poor privacy practices 80% more likely to suffer data breach

There’s a predictive relationship between responsible privacy practices and security outcomes, according to Osano. Companies with inadequate data privacy practices are 80 percent more likely to suffer a data breach than those with the highest-ran… Continue reading Organizations with poor privacy practices 80% more likely to suffer data breach

Debunking myths related to client-side security and Magecart attacks

The client-side landscape has been overrun by third-party script attacks executed by malicious attackers utilizing formjacking or other methods made famous by the Magecart attack group. Many companies assume their current security stack ensures protect… Continue reading Debunking myths related to client-side security and Magecart attacks

Third-party compliance risk could become a bigger problem

Since the onset of COVID-19, more than half of legal and compliance leaders believe that cybersecurity and data breach is the most-increased third-party risk their organizations face, according to Gartner. Which third-party compliance risk has increase… Continue reading Third-party compliance risk could become a bigger problem

Third-party risk is broken, businesses unprepared for supply chain disruptions

Many companies are not dedicating proper resources to assess third-party risks, and those that are still lack confidence in their programs, according to Prevalent. Supply chain disruptions As a result, there are real consequences including loss of reve… Continue reading Third-party risk is broken, businesses unprepared for supply chain disruptions